

One Identity Manager and ForgeRock are two prominent products competing in the identity and access management category. Based on feature richness, customization, and flexibility, One Identity Manager appears to have an upper hand. However, ForgeRock stands out in security and seamless third-party integration, making it a preferred choice for organizations prioritizing these aspects.
Features: One Identity Manager is renowned for its robust logical schema naming, flexible reporting, and extensive customization abilities, offering a clean graphical user interface and easy configuration. It includes strong out-of-the-box connectors for platforms like SAP, LDAP, and MS Active Directory. Conversely, ForgeRock excels in comprehensive security features, intelligent authentication, and easy adaptation to multiple environments. Its integration capabilities with third-party applications ensure consistent operations.
Room for Improvement: One Identity Manager is criticized for complex synchronization, inadequate documentation, and challenging UI navigability. There are reported issues with configuration, cloud integration, and job server efficiency. ForgeRock faces challenges with its customization complexity and occasional instability due to its open-source background. It could benefit from enhancements in UI responsiveness and biometric and KYC integration.
Ease of Deployment and Customer Service: One Identity Manager supports on-premises, public, and hybrid cloud deployments, providing flexibility. It receives praise for comprehensive support, primarily through partners, although response times can be inconsistent. ForgeRock features simpler deployments across various environments compared to One Identity Manager, with a focus on direct and agile technical support.
Pricing and ROI: One Identity Manager is noted for competitive pricing and ROI improvements through automation and provisioning efficiencies, seen as cost-effective compared to solutions like SailPoint. ForgeRock offers value but is perceived as costly, despite having a free open-source version available. Both products deliver ROI by enhancing productivity and streamlining processes, with One Identity Manager often preferred for its attractive pricing model in enterprise settings.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
Without it, we would need thousands of additional people.
Instead of spending on various systems, having one centralized system that handles all my organizational requirements helps save money.
Several users reported reduced onboarding and offboarding times by around 40% thanks to automated provisioning and de-provisioning.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
If you have outages or critical production problems, you can count on the manufacturer to help resolve the situation.
They should focus on bringing in technically skilled individuals who understand the tools and technologies involved.
Compared to my experiences with other tools, their support is exemplary.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
It is architected so that key components can be scaled both horizontally and vertically to handle increasing loads from employee accounts to millions of external identities if needed.
Generally, if we need to add thousands of new users, we can ramp up container resources effectively.
It is highly scalable and capable of keeping up with the organization's growth needs, especially in the enterprise environment.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
One Identity Manager is considered stable and dependable for enterprise identity management with a strong track record of uptime and reliability when implemented correctly.
It is widely seen as stable in production once properly configured, especially for Active Directory automation, user provisioning, de-provisioning, and role-based delegation.
I would rate it a nine out of ten for stability.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
This lack of 24-hour support is problematic from a testing and development standpoint.
It is crucial for them to expand their support team to match their product's success.
When it comes to privileged access management, we need to know who has access to what, which is the central problem we want to solve.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
On-premises might incur higher costs.
We have a good enterprise license agreement, and we are very happy with what we get for the price we pay for it.
Many customers find it fair and reasonable for enterprise use, though it can be expensive for smaller organizations due to total licensing and implementation cost.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
It ensures high security through multiple approval processes, preventing unauthorized access and enhancing compliance by providing time-based access for privileged accounts with proper audit trails.
It continuously monitors user behavior in real-time, triggering automated responses, and manages secure access for both on-premises and cloud applications using protocols such as SAML.
Once you have some experience, it demonstrates best practices and guides you on the correct way to use the tool.
| Product | Mindshare (%) |
|---|---|
| One Identity Manager | 4.5% |
| ForgeRock | 3.1% |
| Other | 92.4% |

| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 81 |
| Midsize Enterprise | 31 |
| Large Enterprise | 109 |
ForgeRock offers robust integration, customization, and identity management with support for SAML, OAuth 2.0, and DevOps readiness, ensuring enhanced security and scalability.
ForgeRock stands out in identity and access management featuring flexible authentication flows, risk-based authentication, centralized policy management, and comprehensive data protection. Its open-source foundation and cloud capabilities allow versatility and ease of use. While it provides excellent user path orchestration through the Journey feature, challenges exist in integration support and user-friendly customization. Improved documentation and streamlined interfaces are necessary to overcome deployment complexities. Additionally, the cost and support model may be burdensome for smaller organizations.
What are the key features?ForgeRock is widely utilized in industries like telecommunications, insurance, and open banking for secure user authentication and access management. It supports microservice authentications, customer identity management, single sign-on, and multi-factor authentication, integrating effectively with existing infrastructures to enhance security and user experience.
One Identity Manager offers centralized identity management with strong audit and compliance support, lifecycle automation, and streamlined access provisioning. It integrates with systems like SAP, Active Directory, and cloud platforms to enhance security and efficiency.
One Identity Manager provides extensive customization and flexible role-based access control, making it an effective tool for managing identities across different environments. Its centralized system supports lifecycle automation and offers seamless integration with multiple platforms, such as SAP and Active Directory. With robust audit and compliance tools, it helps organizations improve security and operational efficiency. Although there is room for improvement in database performance and user interface design, its current features offer substantial time savings and error reduction through effective automation and governance capabilities.
What are the standout features?One Identity Manager is widely implemented across industries like finance, healthcare, and manufacturing. In finance, it ensures compliance with stringent regulations by automating user access audits and approval workflows. Healthcare organizations use it to manage access in complex environments, ensuring patient data confidentiality. Manufacturing industries benefit from its integration capabilities, enabling seamless workflows across multiple systems and enhancing productivity.
We monitor all Identity Management (IM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.